Screen OS

 View Only
last person joined: 8 months ago 

This is a legacy community with limited Juniper monitoring.
  • 1.  object naming standard

    Posted 01-21-2009 13:24
    Does anybody have a good name convention for name objects in the firewall? Can someone suggest a good name convention? Is there any good practice to be follow for this matter?

    Thanks



  • 2.  RE: object naming standard
    Best Answer

    Posted 01-22-2009 09:18

    If it's a well known protocol then I find using he acronyms very helpful (ie...RDP = TCP/3389)

    If it's a well known hostname, something meaningful to you or other staff, using hostnames is acceptable to me (ie...EXCHANGE = 1.1.1.1/32) 

     

     

    If it's a service port that is not well known and is unfamiliar to most everyone, using the destination port  for the name I've seen work real well (ie...7797 = TCP+UDP/7797); same is true for devices that may not have a hostname.

     

    I think that it's up to you and what is truly logical for your environment and for ease of management.  I would certainly suggest keeping it simple.  Security and names doesn't have to be complicated.